Intel

◈ IP INTEL geo, ASN, ISP, VPN flags — any target ◈ CARD CHECK luhn + BIN issuer intelligence ◈ MAG-LAB browser magstripe studio — ISO 7811 encode, read, batch issue (closed-loop only) ◈ MAIL FORENSICS true origin, relay delays, spoof flags, .eml import ◈ IMAGE FORENSICS EXIF, GPS, ELA, edit detection ◈ PHONE LOOKUP carrier, line type, region, timezone — any number ◈ USERNAME SLEUTH find one handle across 12+ platforms ◈ DOMAIN RECON RDAP whois, DNS, nameservers, subdomains

Operate

◈ SMS RENTAL 30-min numbers, refundable ◈ PROXY LAB residential egress, geo builder ◈ STEGO LAB hide words in pictures ◈ BURNER MAIL receive-only mailboxes, countdown

Hunt

◈ TRACK FILE opens report back: IP, city, ISP ◈ CANARY TRAPS links, pixels & honeytokens — instant alerts ◈ DEAD-DROP burn-after-read encrypted notes ◈ SCREENSHOT page capture or rendered-text fallback ◈ FRAUD-SCORE composite IP + email + BIN risk 0-100 ◈ FREE TOOLS DNS, headers, JWT, hasher ◈ PHONE LOOKUP osint: carrier + line type + region ◈ USERNAME SLEUTH osint: handle across platforms ◈ DOMAIN RECON osint: RDAP + DNS + subdomains ◈ DMS dead man switch: silence releases pre-written payload dead-drops ◈ HASH-CHAIN Tamper-evident chain-of-custody logs — edits break the chain at the exact link ◈ GHOST-TEXT hide secret messages in invisible characters inside innocent text ◈ CHAFF deterministic throwaway personas — same seed, same identity, zero storage ◈ LEAK-TRACER per-recipient invisible watermarks — leaks name the leaker ◈ TRACEOUT network traceroute with per-hop geo ◈ TRAP-CHAIN breadcrumb tripwires — each fired trap feeds them the next, maps their path

Account

◈ INBOX no-KYC messaging ◈ SIGN UP username + password, 10 seconds, no KYC ◈ API KEYS account, balance, metered keys ◈ PASS everything's free now — no pass needed ◈ AGENT PASSPORT machine-readable badge

HASH CHAINS

A chain-of-custody log that cannot be quietly edited. Every entry is hashed onto the one before it — change, delete or reorder anything after the fact and verification names the exact broken link. Ship the export as a receipt nobody can tamper with.

New chain
Record an event
Log in (no KYC) to keep custody chains.
EXAMPLE FLOW — prove you did not touch the evidence
  1. you create a chain named seized-laptop-2026 before you touch anything.
  2. you append: #1 'powered on, photographed screen, no disk encryption prompt'.
  3. every action gets its own entry — imaging, hashing, handoff to a colleague, who signed what.
  4. them opposing counsel alleges you edited the log months later.
  5. you open /chain — the integrity column says verified: all links re-hash clean.
  6. you export the JSON receipt; anyone can re-run the sha256 chain and reach the same verdict.
HOW IT WORKS
  1. Each entry stores only its data, a timestamp and hash = sha256(chain-seed, entry#, time, data, previous-hash).
  2. The first entry is anchored to a random per-chain seed; every later entry is anchored to the hash before it.
  3. Editing any historical entry changes its hash — which breaks the hash of everything after it, so the tamper point is pinpointed, not just detected.
  4. Verification re-walks the whole chain on page load: intact chains show a green verdict, tampered ones name the first bad entry number.
  5. Export produces a JSON receipt with every entry + hash. Keep a copy offline; it will verify against the live chain forever — or expose any drift.
  6. Use one chain per distinct item or matter. Dense, boring, contemporaneous entries are the whole point.
JARGON — hover any chip:
chain of custody hash link genesis entry
FOR AGENTS ?
GET /api/chain/list · GET /api/chain/entries?log=1&verify=1
curl "https://dark0rbits.thetempleofdoom.com/api/chain/entries?log=1&verify=1" -H "Cookie: dark0rbits_tok=…"Create chains with POST /chain (form: name), append with POST /chain/add (form: log, data). verify=1 returns ok, links and first_bad_seq. · spec: /openapi.json · catalog: /llms.txt
✦ REACH THE DEV
⚙